2 ###############################################################################
4 # IPFire.org - A linux based firewall #
5 # Copyright (C) 2010 Michael Tremer & Christian Schmidt #
7 # This program is free software: you can redistribute it and/or modify #
8 # it under the terms of the GNU General Public License as published by #
9 # the Free Software Foundation, either version 3 of the License, or #
10 # (at your option) any later version. #
12 # This program is distributed in the hope that it will be useful, #
13 # but WITHOUT ANY WARRANTY; without even the implied warranty of #
14 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
15 # GNU General Public License for more details. #
17 # You should have received a copy of the GNU General Public License #
18 # along with this program. If not, see <http://www.gnu.org/licenses/>. #
20 ###############################################################################
22 .
/usr
/lib
/network
/header-zone
24 HOOK_SETTINGS
="HOOK SERVER_ADDRESS LOCAL_ADDRESS LOCAL_ADDRESS6 TUNNEL_ID"
25 HOOK_SETTINGS
="${HOOK_SETTINGS} AUTO_UPDATE_ENDPOINT USERNAME PASSWORD"
27 # The IPv4 address of the tunnel endpoint where to connect to.
30 # The local IPv4 address of the tunnel endpoint.
33 # The address that is assigned to the tunnel device (with prefix).
36 # True if the endpoint IP address should be automatically
37 # updated each time the tunnel connects.
38 AUTO_UPDATE_ENDPOINT
="false"
40 # The ID of the tunnel.
43 # Credentials for the tunnelbroker.net service.
47 hook_check_settings
() {
48 assert isset SERVER_ADDRESS
49 assert isset LOCAL_ADDRESS
50 assert isset LOCAL_ADDRESS6
51 # LOCAL_ADDRESS6 needs to have a prefix
52 assert ipv6_net_is_valid LOCAL_ADDRESS6
54 if enabled AUTO_UPDATE_ENDPOINT
; then
55 assert isset TUNNEL_ID
61 hook_parse_cmdline
() {
64 while [ $# -gt 0 ]; do
67 SERVER_ADDRESS
=$
(cli_get_val
${1})
69 --local-ipv4-address=*)
70 LOCAL_ADDRESS
=$
(cli_get_val
${1})
72 --local-ipv6-address=*)
73 LOCAL_ADDRESS6
=$
(cli_get_val
${1})
75 --auto-update-endpoint=*)
76 local val
="$(cli_get_val ${1})"
79 AUTO_UPDATE_ENDPOINT
="true"
81 AUTO_UPADTE_ENDPOINT
="false"
85 TUNNEL_ID
="$(cli_get_val ${1})"
88 USERNAME
="$(cli_get_val ${1})"
91 PASSWORD
="$(cli_get_val ${1})"
94 echo "Unknown option: ${1}" >&2
106 # Read configuration options.
107 zone_settings_read
"${zone}"
109 if enabled AUTO_UPDATE_ENDPOINT
; then
110 log DEBUG
"Updating tunnel endpoint"
112 he_tunnelbroker_endpoint_update \
113 --username="${USERNAME}" \
114 --password="${PASSWORD}" \
115 --tunnel-id="${TUNNEL_ID}"
118 ip_tunnel_add
${zone} --ttl=255 \
119 --remote-address="${SERVER_ADDRESS}" \
120 --local-address="${LOCAL_ADDRESS}"
122 # Bring up the device.
123 device_set_up
${zone}
125 # Assign IPv6 address.
126 ip_address_add
${zone} ${LOCAL_ADDRESS6}
128 # Update routing information.
129 db_set
"${zone}/ipv6/type" "${HOOK}"
130 db_set
"${zone}/ipv6/local-ip-address" "${LOCAL_ADDRESS6}"
131 db_set
"${zone}/ipv6/active" 1
133 # Update the routing database.
134 routing_update
${zone} ipv6
135 routing_default_update
144 # Remove everything from the routing db.
145 db_delete
"${zone}/ipv6"
147 routing_update
${zone} ipv6
148 routing_default_update
150 # Remove the tunnel device.
151 ip_tunnel_del
${zone}
160 cli_device_headline
${zone}
162 zone_settings_read
"${zone}"
164 local server_line
="${SERVER_ADDRESS}"
165 local server_hostname
=$
(dns_get_hostname
${SERVER_ADDRESS})
166 if [ -n "${server_hostname}" ]; then
167 server_line
="${server_line} (Hostname: ${server_hostname})"
170 cli_headline
2 "Configuration"
171 cli_print_fmt1
2 "Server" "${server_line}"
172 cli_print_fmt1
2 "Endpoint IPv4 address" "${LOCAL_ADDRESS}"
173 cli_print_fmt1
2 "Endpoint IPv6 address" "${LOCAL_ADDRESS6}"